{"absolute_url":"https://job-boards.greenhouse.io/xai/jobs/4559147007","data_compliance":[{"type":"gdpr","requires_consent":false,"requires_processing_consent":false,"requires_retention_consent":false,"retention_period":null,"demographic_data_consent_applies":false}],"internal_job_id":4340373007,"location":{"name":"Palo Alto, California"},"metadata":[{"id":22659078007,"name":"Job Description via Google Doc URL [please share with Olivia]","value":"https://docs.google.com/document/d/1mX2xqlDBhaXYGLyH4BN5rHlgKBa_LKXtuZftAd7ddA8/edit?tab=t.0#heading=h.lw8417b1tq8q","value_type":"short_text"},{"id":16340689007,"name":"Featured Role","value":null,"value_type":"yes_no"}],"id":4559147007,"updated_at":"2026-08-27T18:09:48-04:00","requisition_id":"103","title":"Application Security Engineer","company_name":"SpaceXAI","first_published":"2024-11-14T18:04:42-05:00","language":"en","application_deadline":null,"content":"\u0026lt;div class=\u0026quot;content-intro\u0026quot;\u0026gt;\u0026lt;p\u0026gt;\u0026lt;span style=\u0026quot;font-family: arial, helvetica, sans-serif;\u0026quot;\u0026gt;SpaceXAI’s mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge.\u0026amp;nbsp;\u0026lt;/span\u0026gt;\u0026lt;span style=\u0026quot;font-family: arial, helvetica, sans-serif;\u0026quot;\u0026gt;Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. \u0026lt;/span\u0026gt;\u0026lt;span style=\u0026quot;font-family: arial, helvetica, sans-serif;\u0026quot;\u0026gt;We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company’s mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. \u0026lt;/span\u0026gt;\u0026lt;span style=\u0026quot;font-family: arial, helvetica, sans-serif;\u0026quot;\u0026gt;All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates.\u0026lt;/span\u0026gt;\u0026lt;/p\u0026gt;\u0026lt;/div\u0026gt;\u0026lt;h3\u0026gt;\u0026lt;strong\u0026gt;ABOUT THE ROLE:\u0026lt;/strong\u0026gt;\u0026lt;/h3\u0026gt;\n\u0026lt;p\u0026gt;We are seeking a skilled and innovative Application Security Engineer to join our technology-driven company. In this role, you will be responsible for ensuring the security and integrity of our cloud-native applications and systems throughout the software development lifecycle, with a particular focus on code security, CI/CD pipelines, and emerging AI technologies.\u0026lt;/p\u0026gt;\n\u0026lt;h3\u0026gt;\u0026lt;strong\u0026gt;RESPONSIBILITIES:\u0026lt;/strong\u0026gt;\u0026lt;/h3\u0026gt;\n\u0026lt;ul\u0026gt;\n\u0026lt;li\u0026gt;Conduct in-depth code reviews and static analysis to identify and mitigate security vulnerabilities in our applications\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Design and implement secure coding guidelines and best practices for development teams\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Collaborate closely with development teams to integrate security practices throughout the CI/CD pipeline\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Perform threat modeling and risk assessments for applications, developing mitigation strategies for potential risks\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Manage vulnerability tracking and remediation efforts, providing guidance to development teams\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Support incident response activities related to application security\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Stay current on emerging security threats and trends in cloud-native technologies and AI, continuously enhancing our security measures\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Evaluate and secure software supply chains, including producing and maintaining Software Bills of Materials (SBOMs)\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Address security concerns specific to AI and machine learning models, with a focus on the OWASP LLM Top 10\u0026lt;/li\u0026gt;\n\u0026lt;/ul\u0026gt;\n\u0026lt;h3\u0026gt;\u0026lt;strong\u0026gt;BASIC QUALIFICATIONS:\u0026lt;/strong\u0026gt;\u0026lt;/h3\u0026gt;\n\u0026lt;ul\u0026gt;\n\u0026lt;li\u0026gt;Bachelor\u0026#39;s degree in Computer Science, Cybersecurity, or a related field\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;3-5 years of experience in application security, with a strong focus on code security practices\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Deep understanding of secure coding practices, application security frameworks, and common vulnerabilities (e.g., OWASP Top 10)\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Proficiency in Python or Rust programming languages and experience with secure coding practices in these languages\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Experience securing CI/CD pipelines and implementing DevSecOps practices\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Familiarity with software supply chain security and SBOM generation tools\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Experience with security testing tools (e.g., Burp Suite, OWASP ZAP) and static/dynamic code analysis\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Understanding of AI/ML security implications, particularly those outlined in the OWASP LLM Top 10\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Excellent communication skills, able to explain complex security issues to both technical and non-technical audiences\u0026lt;/li\u0026gt;\n\u0026lt;/ul\u0026gt;\n\u0026lt;h3\u0026gt;\u0026lt;strong\u0026gt;PREFERRED SKILLS AND EXPERIENCE:\u0026lt;/strong\u0026gt;\u0026lt;/h3\u0026gt;\n\u0026lt;ul\u0026gt;\n\u0026lt;li\u0026gt;Experience with cloud platforms (e.g., GCP, AWS, Azure) and their security features\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Relevant security certifications (e.g., CSSLP, OSWE)\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Background in data privacy and compliance regulations relevant to cloud-native applications and AI systems\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Experience with GitOps and infrastructure-as-code security\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Familiarity with federated learning and privacy-preserving machine learning techniques\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Experience in building custom security tooling to enhance and automate security processes\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Interest in leveraging AI to automate security tasks and improve efficiency\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Contributions to open-source security projects or tools\u0026lt;/li\u0026gt;\n\u0026lt;li\u0026gt;Experience in securing AI/ML models and data pipelines\u0026lt;/li\u0026gt;\n\u0026lt;/ul\u0026gt;\n\u0026lt;h3\u0026gt;COMPENSATION AND BENEFITS:\u0026lt;/h3\u0026gt;\n\u0026lt;p\u0026gt;\u0026lt;span style=\u0026quot;font-weight: 400;\u0026quot;\u0026gt;$100,000 - $258,000 USD\u0026lt;/span\u0026gt;\u0026lt;/p\u0026gt;\n\u0026lt;p\u0026gt;Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short \u0026amp;amp; long-term disability insurance, life insurance, and various other discounts and perks.\u0026lt;/p\u0026gt;\u0026lt;div class=\u0026quot;content-conclusion\u0026quot;\u0026gt;\u0026lt;p\u0026gt;\u0026lt;em\u0026gt;SpaceXAI is an equal opportunity employer. For details on data processing, view our \u0026lt;/em\u0026gt;\u0026lt;em\u0026gt;\u0026lt;a href=\u0026quot;https://x.ai/legal/recruitment-privacy-notice\u0026quot; target=\u0026quot;_blank\u0026quot;\u0026gt;Recruitment Privacy Notice\u0026lt;/a\u0026gt;.\u0026lt;/em\u0026gt;\u0026lt;/p\u0026gt;\u0026lt;/div\u0026gt;","departments":[{"id":4046295007,"name":"Information Security","child_ids":[],"parent_id":4024733007}],"offices":[{"id":4035106007,"name":"Palo Alto, CA","location":"Palo Alto, California","child_ids":[],"parent_id":4054926007}],"ai_disclaimer":null,"include_ai_disclaimer":null,"ai_opt_out_request_url":null}